Separate the kernel signature checking keyring from module signing so that it
can be used by code other than the module-signing code.
BUG: 27175947
Signed-off-by: David Howells <dhowells@redhat.com>
Change-Id: I38a3809e2ebc663d158efcf0dd40b02f133e3b61